Page 12 of 56 results (0.010 seconds)

CVSS: 4.4EPSS: 0%CPEs: 1EXPL: 2

Insufficient protection of the server-side encryption keys in Nextcloud Server 19.0.1 allowed an attacker to replace the public key to decrypt them later on. Una protección insuficiente de las claves de cifrado del lado del servidor en Nextcloud Server versión 19.0.1, permitió a un atacante reemplazar la clave pública para descifrarla más adelante • http://seclists.org/fulldisclosure/2020/Dec/54 https://hackerone.com/reports/743505 https://nextcloud.com/security/advisory/?id=NC-SA-2020-040 • CWE-522: Insufficiently Protected Credentials •